Documentation Overview

Welcome to the Firewall-Mon documentation center. Firewall-Mon is a vendor-agnostic, high-performance firewall fleet monitoring system. It provides real-time SNMP status polling across eight vendor families, multi-protocol flow analytics (sFlow, NetFlow v5/v9, and IPFIX with denied-flow visibility), trap routing, and security-classified config drift logging in a unified dashboard — with role-based access control and optional two-factor authentication.

Product Posture

Unlike general Network Management Systems (NMS) which offer generic OID walks and massive configuration tables, Firewall-Mon is designed strictly firewall-first. It provides immediate, out-of-the-box visibility into CPU/ASIC chips, interface states, dynamic VPN tunnels (IPsec, SSL, dialup), High Availability (HA) cluster health, and environment sensors.

Key Project Roots

Firewall-Mon is a TechnicalLabs open-source project created by Xphox of Xphox Networks. It is released under the permissive MIT license and can be fully self-hosted within a single container in under 30 seconds.

Need Immediate Installation?

You can start the server locally using our single command line repository builder:

git clone https://github.com/xphox2/Firewall-Monitoring.git && cd Firewall-Monitoring && docker compose up -d View Quick Start Steps →